From: David Miller <davem@davemloft.net>
To: nikolay@cumulusnetworks.com
Cc: makita.toshiaki@lab.ntt.co.jp, stephen@networkplumber.org,
netdev@vger.kernel.org, bridge@lists.linux-foundation.org,
netdev@bof.de
Subject: Re: [PATCH net-next v2] bridge: Synchronize unicast filtering with FDB
Date: Sat, 11 Jun 2016 15:50:16 -0700 (PDT) [thread overview]
Message-ID: <20160611.155016.671585186295613791.davem@davemloft.net> (raw)
In-Reply-To: <575C39B1.3010300@cumulusnetworks.com>
From: Nikolay Aleksandrov <nikolay@cumulusnetworks.com>
Date: Sat, 11 Jun 2016 18:17:53 +0200
> Oops, I almost missed the v2, sorry about that. So, technically it
> looks correct, but I only fear the scalability impact of the
> change. If there're a large number of vlans adding a macvlan (or any
> device that syncs uc addr) might become very slow and every flag
> change will become very slow too without an option to revert to the
> original behaviour so we'll have to wait for the entries to be added
> in order to delete them. Another common scenario is having 8021q
> interfaces on top of the bridge with different mac addresses for
> some of the configured vlans (or with macvlans on top of them for
> VRR), that use case would suffer as well because their macs need to
> be local only for those vlans, and not the 2000+ other vlans that
> might exist. On every sync_uc() call all the fdb entries get
> deleted and added again, so even after deleting some manually they
> can come back unexpectedly after some operation and also the message
> storm from all the deletes and adds could be problematic as well.
>
>
> E.g. 2000 br0 vlans, 25 macvlans on br0 (adding them took more than 5 minutes, 53k fdb entries):
> $ bridge fdb del de:8e:9f:16:c5:71 dev br0 vlan 289
> $ ip l set br0 multicast on
> $ bridge fdb | grep 289 | grep de:8e:9f:16:c5:71
> de:8e:9f:16:c5:71 dev br0 vlan 1289 master br0 permanent
> de:8e:9f:16:c5:71 dev br0 vlan 289 master br0 permanent
>
> In fact you can't escape the slow performance even if you delete all
> entries because on the next flag change or interface add, they will
> be added back.
Yeah, I think the performance implications are too severe too, I'm
not applying this.
next prev parent reply other threads:[~2016-06-11 22:50 UTC|newest]
Thread overview: 8+ messages / expand[flat|nested] mbox.gz Atom feed top
2016-06-06 12:20 [PATCH net-next v2] bridge: Synchronize unicast filtering with FDB Toshiaki Makita
2016-06-11 5:35 ` David Miller
2016-06-11 16:17 ` Nikolay Aleksandrov via Bridge
2016-06-11 22:50 ` David Miller [this message]
2016-06-12 6:35 ` [Bridge] " Toshiaki Makita
2016-06-13 11:13 ` Toshiaki Makita
2016-06-13 11:23 ` [Bridge] " Nikolay Aleksandrov
2016-06-13 14:49 ` Toshiaki Makita
Reply instructions:
You may reply publicly to this message via plain-text email
using any one of the following methods:
* Save the following mbox file, import it into your mail client,
and reply-to-all from there: mbox
Avoid top-posting and favor interleaved quoting:
https://en.wikipedia.org/wiki/Posting_style#Interleaved_style
* Reply using the --to, --cc, and --in-reply-to
switches of git-send-email(1):
git send-email \
--in-reply-to=20160611.155016.671585186295613791.davem@davemloft.net \
--to=davem@davemloft.net \
--cc=bridge@lists.linux-foundation.org \
--cc=makita.toshiaki@lab.ntt.co.jp \
--cc=netdev@bof.de \
--cc=netdev@vger.kernel.org \
--cc=nikolay@cumulusnetworks.com \
--cc=stephen@networkplumber.org \
/path/to/YOUR_REPLY
https://kernel.org/pub/software/scm/git/docs/git-send-email.html
* If your mail client supports setting the In-Reply-To header
via mailto: links, try the mailto: link
Be sure your reply has a Subject: header at the top and a blank line
before the message body.
This is a public inbox, see mirroring instructions
for how to clone and mirror all data and code used for this inbox;
as well as URLs for NNTP newsgroup(s).